#VU111358 Memory leak in Linux kernel - CVE-2022-49949
Published: June 19, 2025 / Updated: June 21, 2025
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the fw_upload_start() function in drivers/base/firmware_loader/sysfs_upload.c, within the fw_dev_release() function in drivers/base/firmware_loader/sysfs.c. A local user can perform a denial of service (DoS) attack.